CVE-2019-0808highunder attack

CVE-2019-0808: high-severity vulnerability in Microsoft Windows

Published · Updated

100Vexday Risk Score

Patch now. It under exploitation confirmed by CISA and has a working public exploit.

ssvc Actcvss 7.8epss 53%
from disclosure to weapon0 days
Published on NVDApr 9
1st PoCMar 25
metasploitMar 12
CISA KEV+939d
exploitation probability
53%top 1% of all CVEs
observed exploitation
yesCISA + VulnCheck
9 public exploit(s)
Action required by CISAfederal deadline: 2022-05-03

Apply updates per vendor instructions.

In short

A flaw in Windows' Win32k component allows an attacker with local access to gain higher privileges on the system. This happens because the component doesn't properly manage objects in memory, creating a security gap.

Technical detail

Win32k elevation of privilege vulnerability caused by improper memory object handling. Attack vector is local; requires user-level code execution as a prerequisite. Successful exploitation grants SYSTEM-level privileges, enabling full system compromise.

Summary generated and translated by AI from the official description.

The full analysis of this CVE is available in Portuguese →

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0797.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.